Vulnerabilities > NULL Pointer Dereference

DATE CVE VULNERABILITY TITLE RISK
2025-01-31 CVE-2025-21682 NULL Pointer Dereference vulnerability in Linux Kernel
In the Linux kernel, the following vulnerability has been resolved: eth: bnxt: always recalculate features after XDP clearing, fix null-deref Recalculate features when XDP is detached. Before: # ip li set dev eth0 xdp obj xdp_dummy.bpf.o sec xdp # ip li set dev eth0 xdp off # ethtool -k eth0 | grep gro rx-gro-hw: off [requested on] After: # ip li set dev eth0 xdp obj xdp_dummy.bpf.o sec xdp # ip li set dev eth0 xdp off # ethtool -k eth0 | grep gro rx-gro-hw: on The fact that HW-GRO doesn't get re-enabled automatically is just a minor annoyance.
local
low complexity
linux CWE-476
5.5
2025-01-27 CVE-2025-24177 NULL Pointer Dereference vulnerability in Apple Ipados
A null pointer dereference was addressed with improved input validation.
network
low complexity
apple CWE-476
7.5
2025-01-23 CVE-2024-50665 NULL Pointer Dereference vulnerability in Gpac 2.4
gpac 2.4 contains a SEGV at src/isomedia/drm_sample.c:1562:96 in isom_cenc_get_sai_by_saiz_saio in MP4Box.
local
low complexity
gpac CWE-476
5.5
2025-01-21 CVE-2023-37030 NULL Pointer Dereference vulnerability in Linuxfoundation Magma
A Null pointer dereference vulnerability in the Mobile Management Entity (MME) in Magma <= 1.8.0 (fixed in v1.9 commit 08472ba98b8321f802e95f5622fa90fec2dea486) allows network-adjacent attackers to crash the MME via an S1AP `Initial UE Message` packet missing an expected `eNB_UE_S1AP_ID` field.
low complexity
linuxfoundation CWE-476
6.5
2025-01-21 CVE-2023-37031 NULL Pointer Dereference vulnerability in Linuxfoundation Magma
A Null pointer dereference vulnerability in the Mobile Management Entity (MME) in Magma <= 1.8.0 (fixed in v1.9 commit 08472ba98b8321f802e95f5622fa90fec2dea486) allows network-adjacent attackers to crash the MME via an S1AP `eNB Configuration Transfer` packet missing its required `Target eNB ID` field.
low complexity
linuxfoundation CWE-476
6.5
2025-01-21 CVE-2023-37033 NULL Pointer Dereference vulnerability in Linuxfoundation Magma
A Null pointer dereference vulnerability in the Mobile Management Entity (MME) in Magma <= 1.8.0 (fixed in v1.9 commit 08472ba98b8321f802e95f5622fa90fec2dea486) allows network-adjacent attackers to crash the MME via an S1AP `Initial UE Message` packet missing an expected `EUTRAN_CGI` field.
low complexity
linuxfoundation CWE-476
6.5
2025-01-21 CVE-2023-37034 NULL Pointer Dereference vulnerability in Linuxfoundation Magma
A Null pointer dereference vulnerability in the Mobile Management Entity (MME) in Magma <= 1.8.0 (fixed in v1.9 commit 08472ba98b8321f802e95f5622fa90fec2dea486) allows network-adjacent attackers to crash the MME via an S1AP `Initial UE Message` packet missing an expected `TAI` field.
low complexity
linuxfoundation CWE-476
6.5
2025-01-21 CVE-2023-37036 NULL Pointer Dereference vulnerability in Linuxfoundation Magma
A Null pointer dereference vulnerability in the Mobile Management Entity (MME) in Magma <= 1.8.0 (fixed in v1.9 commit 08472ba98b8321f802e95f5622fa90fec2dea486) allows network-adjacent attackers to crash the MME via an S1AP `Uplink NAS Transport` packet missing an expected `ENB_UE_S1AP_ID` field.
low complexity
linuxfoundation CWE-476
6.5
2025-01-21 CVE-2023-37037 NULL Pointer Dereference vulnerability in Linuxfoundation Magma
A Null pointer dereference vulnerability in the Mobile Management Entity (MME) in Magma <= 1.8.0 (fixed in v1.9 commit 08472ba98b8321f802e95f5622fa90fec2dea486) allows network-adjacent attackers to crash the MME via an S1AP `S1Setup Request` packet missing an expected `Supported TAs` field.
low complexity
linuxfoundation CWE-476
6.5
2025-01-21 CVE-2023-37038 NULL Pointer Dereference vulnerability in Linuxfoundation Magma
A Null pointer dereference vulnerability in the Mobile Management Entity (MME) in Magma <= 1.8.0 (fixed in v1.9 commit 08472ba98b8321f802e95f5622fa90fec2dea486) allows network-adjacent attackers to crash the MME via an S1AP `Uplink NAS Transport` packet missing an expected `MME_UE_S1AP_ID` field.
low complexity
linuxfoundation CWE-476
6.5